NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 3000 | CVE-2008-3116 | Format string vulnerability in dx8render.dll in Snail Game (aka Suzhou Snail Electronic Company) 5th street (aka Hot Step or High Street 5) allows remote attackers to execute arbitrary code via format string specifiers in a chat message. | 2 | 10 | High | 2017-01-03 | 2009-01-29 | View | |
| 4024 | CVE-2008-4168 | Cross-site scripting (XSS) vulnerability in verify_login.jsp in Pro2col Stingray FTS allows remote attackers to inject arbitrary web script or HTML via the form_username parameter (aka user name field). | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 5048 | CVE-2008-5270 | SQL injection vulnerability in view.topics.php in Yuhhu Superstar 2008 allows remote attackers to execute arbitrary SQL commands via the board parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 3770 | CVE-2008-3908 | Multiple buffer overflows in Princeton WordNet (wn) 3.0 allow context-dependent attackers to execute arbitrary code via (1) a long argument on the command line; a long (2) WNSEARCHDIR, (3) WNHOME, or (4) WNDBVERSION environment variable; or (5) a user-supplied dictionary (aka data file). NOTE: since WordNet itself does not run with special privileges, this issue only crosses privilege boundaries when WordNet is invoked as a third party component. | 2 | 10 | High | 2017-01-03 | 2009-01-29 | View | |
| 4026 | CVE-2008-4170 | create_account.php in osCommerce 2.2 RC 2a allows remote attackers to obtain sensitive information via an invalid dob parameter, which reveals the installation path in an error message. | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View |
Page 2674 of 17672, showing 5 records out of 88360 total, starting on record 13366, ending on 13370